worms reloaded +7.exe

The application worms reloaded +7.exe has been detected as a potentially unwanted program by 16 anti-malware scanners. This is a setup program which is used to install the application. The file has been seen being downloaded from download1583.mediafire.com.
Version:
1.8.0.0

MD5:
510c08234b3adb950b5b0131e537a549

SHA-1:
2b7bc8f8436095c4f5b727564a477b16469c5111

SHA-256:
73e4614e716382ffb3f14ca6659296f1e55aaadafa25901e871187e907dcb6cf

Scanner detections:
16 / 68

Status:
Potentially unwanted

Analysis date:
12/26/2024 11:45:42 AM UTC  (today)

Scan engine
Detection
Engine version

Agnitum Outpost
Riskware.HackTool
7.1.1

Baidu Antivirus
HackTool.Win32.CheatEngine
4.0.3.1683

Bkav FE
W32.Clode0a.Trojan
1.3.0.4959

Comodo Security
ApplicUnwnt.Win32.HTool.A
17927

ESET NOD32
Win32/HackTool.CheatEngine.AB (variant)
10.9542

Fortinet FortiGate
W32/Malware_fam.NB
8/3/2016

F-Prot
W32/Backdoor2.HJWJ
v6.4.7.1.166

IKARUS anti.virus
Trojan-Dropper.Agent
t3scan.2.2.29

K7 AntiVirus
Backdoor
13.176.11451

Malwarebytes
HackTool.GamesCheat.Gen
v2016.08.03.12

McAfee
Artemis!510C08234B3A
5600.6318

NANO AntiVirus
Trojan.Win32.CheatEngine.lpqgg
0.28.0.58394

Norman
CheatEngine.QU
11.20160803

Sophos
Mal/DelpCht-A
4.98

Total Defense
Win32/Tnega.ANMO
37.0.10818

VIPRE Antivirus
Trojan.Win32.Delf.abt
27366

File size:
871.6 KB (892,518 bytes)

Product version:
1.2

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\downloads\worms reloaded +7.exe

File PE Metadata
Compilation timestamp:
6/20/1992 1:22:17 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
12288:/EDi/pjXb8KWvvPtSeMvleMEWzihphThg4vVNcAwSuOSKtfG4TyloCVNLGz:/mGG7v3wvjEpPAOsFnr4sPns

Entry address:
0x955C8

Entry point:
55, 8B, EC, 83, C4, F0, B8, 38, 53, 49, 00, E8, 0C, 0F, F7, FF, A1, F0, BD, 49, 00, 8B, 00, E8, 54, 3D, FC, FF, A1, F0, BD, 49, 00, 8B, 00, C6, 40, 5B, 00, 8B, 0D, FC, BC, 49, 00, A1, F0, BD, 49, 00, 8B, 00, 8B, 15, D0, 50, 49, 00, E8, 49, 3D, FC, FF, A1, F0, BD, 49, 00, 8B, 00, E8, BD, 3D, FC, FF, E8, FC, EB, F6, FF, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Developed / compiled with:
Microsoft Visual C++

Code size:
594 KB (608,256 bytes)

The file worms reloaded +7.exe has been seen being distributed by the following URL.

Remove worms reloaded +7.exe - Powered by Reason Core Security